A phising email ( Facebook password reset) is doing rounds these days in most of your email Inbox which asks you to which tells you that due to security upgrades at Facebook , your password is changed and you can find the new password in email attachment.

facebook_logo

HOW THE PHISING EMAIL LOOK LIKE:

Because of the measures taken to provide safety to our clients, your password has been changed.
You can find your new password in attached document.

Thanks,
Facebook Security Systems.

The email address do look like from facebook but we all know how easily spammers and hackers can spoof email addresses. The email contains a attachment in a ZIP file format which contains a executable .exe file inside with a name facebook_password_*.exe.

The checked the attachment with Kaspersky and Norton but both failed to detect anything suspicious. Finally i decided to check it on Virustotal. I uploaded it there and scanned. The result was what i expexted. You can see your self.  Almost every anti virus engine detected something suspicious.

facebook passwordphising

If anyone of you get something like this just delete the mail and never open any attachments in your email which look suspicious.